On the security of subspace subcodes of Reed-Solomon codes for public key encryption
Alain Couvreur, Matthieu Lequesne

TL;DR
This paper analyzes the security of McEliece-like encryption schemes using subspace subcodes of Reed-Solomon codes, revealing vulnerabilities through a new polynomial-time distinguisher and an attack that compromises some parameters.
Contribution
It introduces the twisted product operation and demonstrates a practical attack on certain subspace subcode-based encryption schemes.
Findings
A new polynomial-time distinguisher for subspace subcodes
An efficient attack breaking some proposed parameters
Identification of security vulnerabilities in recent schemes
Abstract
This article discusses the security of McEliece-like encryption schemes using subspace subcodes of Reed-Solomon codes, i.e. subcodes of Reed-Solomon codes over whose entries lie in a fixed collection of -subspaces of . These codes appear to be a natural generalisation of Goppa and alternant codes and provide a broader flexibility in designing code based encryption schemes. For the security analysis, we introduce a new operation on codes called the twisted product which yields a polynomial time distinguisher on such subspace subcodes as soon as the chosen -subspaces have dimension larger than . From this distinguisher, we build an efficient attack which in particular breaks some parameters of a recent proposal due to Khathuria, Rosenthal and Weger.
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
